Skip to main navigation Skip to search Skip to main content

A study of factors in HIPAA non-compliant behavior

  • SUNY Buffalo

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The 1996 Health Insurance Portability and Accountability Act (HIPAA) implemented safeguards to regulate the use and disclosure of personal health information. Even though the number of data breaches has declined, the number of affected individuals and total losses have increased. Trusted insiders are an emerging threat, because they have access to systems, administrative privileges and skills to disclose health information for monetary benefit. This study uses economics of crime literature and expected utility theory to model the relationships between risk aversion, risk perception, HIPAA knowledge and intention of violating HIPAA. We also examine the influence of gender and narcissism on risk aversion. A scenario-based survey design was used to examine the structural model. We find risk-aversion and HIPAA knowledge increase the perception of getting caught. This will in turn, affect the incentive amounts required to violate HIPAA regulations. Females are found to be more risk-averse than males. Interestingly, individuals rate high on the narcissism scale are more risk-averse. Contributions to the extant economics of crime and risk bodies of literature as well as practical implications are discussed.

Original languageEnglish
Title of host publicationAmericas Conference on Information Systems 2018
Subtitle of host publicationDigital Disruption, AMCIS 2018
PublisherAssociation for Information Systems
ISBN (Print)9780996683166
StatePublished - 2018
Event24th Americas Conference on Information Systems 2018: Digital Disruption, AMCIS 2018 - New Orleans, United States
Duration: Aug 16 2018Aug 18 2018

Publication series

NameAmericas Conference on Information Systems 2018: Digital Disruption, AMCIS 2018

Conference

Conference24th Americas Conference on Information Systems 2018: Digital Disruption, AMCIS 2018
Country/TerritoryUnited States
CityNew Orleans
Period08/16/1808/18/18

Keywords

  • HIPAA
  • Incentive
  • Narcicism
  • Non-compliance
  • Risk aversion

Fingerprint

Dive into the research topics of 'A study of factors in HIPAA non-compliant behavior'. Together they form a unique fingerprint.

Cite this